I have configured intervlan in Multilayer switches. But i need to separate one vlan, vlan 100 from other vlan..but i just allow only subnet on vlan 100 can access the vlan 100..all other subnet in other vlan cannot access it. How the configuration works?
Create the layer 3 interface for VLAN 100 then. Let's assume that the IP subnet for vlan 100 is 192.168.100.0 /24, VLAN 2 is 192.168.2.0 /24, etc.
I would create an ACL and apply it to the layer 3 VLAN interface.
access-list 101 permit ip 192.168.11.0 0.0.0.255 192.168.100.0 0.0.0.255
access-list 101 deny ip any any log
access-list 102 permit ip 192.168.100.0 0.0.0.255 192.168.11.0 0.0.0.255
access-list 102 deny ip any any log
This is just one way to do it.